Skills

All Skills

attacks

Skills tagged with #attacks

@lenar-amirov

Challenge — `/challenge [gate1|gate2|<file>]`

The cheapest place to lose a gate is in rehearsal. Attack the PM's deck the way the real audience will — armed with the registry, which knows exactly where the evidence is thin.

lenar-amirov/product-pipeline-public+12 more
2mo ago
130
@KenKaiii

Bulletproof

Make software hold up against a real attacker — one that is now partly automated, reads your public code end-to-end, and moves in minutes. Built for solo developers and small teams, who get breached through a short list of boring mistakes, not exotic ones.

KenKaiii/gg-framework+2 more
1mo ago
270
@0xwilliamortiz

offensive-bluetooth-ble

Bluetooth Low Energy (BLE) attack methodology — GATT enumeration, characteristic read/write without auth, pairing downgrade (Just Works forced), LE Secure Connections bypass, MITM via active relay, sniffing with Sniffle (TI CC1352) / Ubertooth / Frontline, encryption key extraction (LE Legacy Pairing crackable, LE Secure Connections strong), proximity authentication abuse (cars, locks), and companion-app trust analysis. Use for IoT BLE devices, smart locks, fitness trackers, medical devices, BLE beacons, or any device pairing over BLE.

0xwilliamortiz/claude-red+8 more
2mo ago
3670
@tsale

analysing-attack

Analyse Mitre ATT&CK tactics, techniques and sub-techniques. Use when performing analysis of threat detections, threat models, security risks or cyber threat intelligence

tsale/awesome-dfir-skills+4 more
5mo ago
2590
@imouiche
MCP

Mitre Attack Mcp Server

MCP server providing 50+ tools for MITRE ATT&CK techniques, groups, and mitigations

mcpgithub
imouiche/complete-mitre-attack-mcp-server
5mo ago
0
@mcp-registry
MCP

Mcp Watchdog

MCP security proxy - detects and blocks 40+ MCP attack classes. Zero config.

mcpgithub
5mo ago
0
@Mizoreww

Adversarial Review

Spawn reviewers on the **opposite model** to challenge work. Reviewers attack from distinct lenses grounded in brain principles. The deliverable is a synthesized verdict — do NOT make changes.

Mizoreww/awesome-claude-code-config+2 more
5mo ago
1450
@allsmog

AI/ML Attack Surface

This skill should be used when the user asks about "AI security", "ML pipeline attacks", "prompt injection", "model deserialization", "unsafe model loading", "Jupyter injection", "LLM security", or needs to identify AI/ML-specific vulnerabilities in codebases that use machine learning frameworks.

allsmog/vuln-scout+18 more
5mo ago
140
@makash

Credential Exfiltration Detection

Determine whether stolen credentials were actually used by attackers after a security incident. This skill walks through a four-phase investigation: scoping what was at risk, checking audit trails, identifying lateral movement, and verifying that rotation was complete.

makash/agent-infra-security+5 more
5mo ago
90
@KaQus

attack-path-architect

Generates strategic attack trees and kill chains from reconnaissance data or domain input. Maps MITRE ATT&CK TTPs, identifies chaining opportunities, trust relationships, and prioritizes attack paths by feasibility and impact. Use when user asks for "attack path", "kill chain", "attack tree", "threat modeling from recon", "attack surface analysis", or "prioritize targets". Requires prior recon data or a domain to analyze. For authorized pentesting and red team engagements only.

KaQus/claude-code-pentest+1 more
5mo ago
60
@willibrandon

Pixel Art Animator

Create and manage sprite animations with multiple frames, animation tags, frame durations, and linked cels. Use when the user wants to animate a sprite, add animation, create movement, make it move, mentions "animation", "animated", "frames", "keyframes", "frame rate", "FPS", "timing", "duration", "walk cycle", "run cycle", "idle animation", "attack animation", "jump", "movement", "motion", or describes actions like "walking", "running", "jumping", "attacking", "breathing", "bobbing", "bouncing". Trigger on animation tags, loops, playback, sequences, "add frames", "duplicate frame", "frame timing", "ping-pong", "loop", "sequence". Also for linked cels, static backgrounds, and frame optimization.

willibrandon/pixel-plugin+3 more
5mo ago
720
@ArcSelf
MCP

Arc Security

Scan AI agent skills for 25 attack classes + runtime monitoring. 1,316+ findings.

mcpai
ArcSelf/arc-security-mcp
5mo ago
0
@Rifteo

attack-surface

Maps every entry point, component, and trust boundary of a target before testing begins prevents missed coverage and prioritizes the highest-value attack paths. Trigger when the user provides a target and wants to know where to start, says "map the attack surface", "what should I test", or "where do I begin", or is starting any engagement after scope-grill is complete.

Rifteo/skills+16 more
2mo ago
300
@nickjlucker
MCP

Greynoise

MCP server for GreyNoise API - Check if IPs are internet background noise or targeted attacks

mcpgithubapi
nickjlucker/mcp-greynoise
5mo ago
0
@patriksimek

hacker

Red team agent for vm2 sandbox escape testing. Systematically attempts to break out of the vm2 JavaScript sandbox by exploiting known and novel attack vectors. Use this skill whenever the user makes changes to vm2's sandbox code (bridge.js, setup-sandbox.js, setup-node-sandbox.js, vm.js, nodevm.js, transformer.js) and wants to verify the sandbox still holds. Also use when the user asks to "hack", "attack", "test security", "try to escape", "red team", or "pentest" the sandbox. Trigger on any request to find sandbox escapes or verify sandbox integrity.

patriksimek/vm2
5mo ago
4.0K0
@SoliEstre

Crypto Reviewer — Ultrasafe Attacker Skill (v0.2.0)

> **Role**: Agent 4 of the 8-agent Ultrasafe fan-out (Ultrasafe.md §15.4). Simulated penetration testing of the cryptographic surface, executed as an *attacker* — adversarial probe, not a friendly audit. > **Tone**: crypto-formal. Findings cite RFC / NIST SP / FIPS / IETF draft anchors, not infor

SoliEstre/EstreGenesis+12 more
2mo ago
50
@cyntrisec
MCP

Cyntrisec AWS Security

AWS security analysis: attack paths, compliance checking, and remediation planning.

mcpgithubaws
cyntrisec/cyntrisec-cli
5mo ago
0
@gebalamariusz
MCP

Cloud Audit

AWS security scanner with Attack Chains, Breach Cost Estimation, and MCP Server for AI agents.

mcpgithubawsai
gebalamariusz/cloud-audit
5mo ago
0